Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Zoneminder CRITICAL 9.8
CVE-2025-65791

ZoneMinder v1.36.34 is vulnerable to Command Injection in web/views/image.php. The application passes unsanitized user input directly to the exec() f…

Mitigation only
Fix from $2,300 2026-02-18
Zoneminder MEDIUM 5.4
CVE-2022-30768

A Stored Cross Site Scripting (XSS) issue in ZoneMinder 1.36.12 allows an attacker to execute HTML or JavaScript code via the Username field when an …

Mitigation only
Fix from $1,600 2022-11-15
Zoneminder HIGH 8.8
CVE-2017-5368

ZoneMinder v1.30 and v1.29, an open-source CCTV server web application, is vulnerable to CSRF (Cross Site Request Forgery) which allows a remote atta…

No fix yet
Fix from $1,950 2017-02-06
Zoneminder MEDIUM 6.1
CVE-2017-5367

Multiple reflected XSS vulnerabilities exist within form and link input parameters of ZoneMinder v1.30 and v1.29, an open-source CCTV server web appl…

No fix yet
Fix from $1,600 2017-02-06
Zoneminder HIGH 7.5
CVE-2013-0232EPSS 48%

includes/functions.php in ZoneMinder Video Server 1.24.0, 1.25.0, and earlier allows remote attackers to execute arbitrary commands via shell metacha…

No fix yet
Fix from $1,950 2013-03-20
Zoneminder MEDIUM 5.0
CVE-2013-0332EPSS 10%

Multiple directory traversal vulnerabilities in ZoneMinder 1.24.x before 1.24.4 allow remote attackers to read arbitrary files via a .. (dot dot) in …

Mitigation only
Fix from $1,600 2013-03-20
Zoneminder HIGH 7.5
CVE-2008-1381

ZoneMinder before 1.23.3 allows remote authenticated users, and possibly unauthenticated attackers in some installations, to execute arbitrary comman…

Mitigation only
Fix from $1,950 2008-05-01